Sign inSign up
regctl

dhi.io/regctl

regctl 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.11-debian-dev, 0.11-debian13-dev, 0.11-dev, 0.11.6-debian-dev, 0.11.6-debian13-dev, 0.11.6-dev

Index digest:

sha256:a02884d9f49fe7e99c1cdb024b6deff3eff2bc6b18acbd36ef1782ce38b9c30b

Manifest digest:

sha256:b2754079dc7f92ea41f6836a541146d56b16006686284758423cb9366a4efd1b

Size

31.60 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/regctl:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/regctl:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/regctl@sha256:38d93993167e18dc67f4265642dfdc04714240d5d08174ac99890c913b203c0a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/regctl@sha256:0d5d8e2930ad0542e7bc52578acc4315b4ef11a44f831884beba8fada78c95ef
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/regctl@sha256:743628d37aa59cc13bd611e766b31c0f688ce8a4e313926133c390e1870a44d3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/regctl@sha256:53732a51544b36f6f027e181ecce9c6d1591d48a72a3485a1a8a0f8f69cf318e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/regctl@sha256:8ddcfa48d0b08e673cd61acb1f97f806a2fb7f8966d3a30ba183173ca89a20ae
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/regctl@sha256:07ca6d7dca02c7f11e81b9d164904b7f02f6cbdf00dc76403ea68fc3c397fbf7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/regctl@sha256:b281dfbc97c7d5ebef8ae9fe027d8c1b14f6429f4af3dc8203528b4f2bb9b257
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/regctl@sha256:5a565ac29f223949face034440b5f2051b5bab5ff8e0dec3ed014493aa4f2114
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/regctl@sha256:1c9296e5e2c83a7da607919257ab8619b0ba44ad83f6b52ae828ec6f594e454e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/regctl@sha256:fe430987ad7fbce9c731c072d2ffddce473efdaf77905f797de8ee0e1f7fe853
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/regctl@sha256:fc2770a29154e03f7dc4747142474fd3b93939fc065121d8a8d9c85551bc1c77
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/regctl@sha256:2cd6371b5afb55e6f525bad57dba31ae7b8be4aa3f487c46df9bf7c735c1f235
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/regctl@sha256:28d73dc049c66492870f64c1d50a6ec7c99eb94ae703469dbfa1ed3410d34921
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/regctl@sha256:4b18102b68d704e15d7fc4c4e4bb5eca8eca78f0fcda88320cd6d066c77dbbf2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/regctl@sha256:6d9f81718d83252819d9e2e075dc3b4df35819c9f6eb9bb61f7635c340298064